WO2008011628A3 - Device authentication - Google Patents
Device authentication Download PDFInfo
- Publication number
- WO2008011628A3 WO2008011628A3 PCT/US2007/074129 US2007074129W WO2008011628A3 WO 2008011628 A3 WO2008011628 A3 WO 2008011628A3 US 2007074129 W US2007074129 W US 2007074129W WO 2008011628 A3 WO2008011628 A3 WO 2008011628A3
- Authority
- WO
- WIPO (PCT)
- Prior art keywords
- password
- session identifier
- device authentication
- key
- communication
- Prior art date
Links
- 238000000034 method Methods 0.000 abstract 2
Classifications
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/06—Network architectures or network communication protocols for network security for supporting key management in a packet data network
- H04L63/062—Network architectures or network communication protocols for network security for supporting key management in a packet data network for key distribution, e.g. centrally by trusted party
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/08—Network architectures or network communication protocols for network security for authentication of entities
-
- H—ELECTRICITY
- H04—ELECTRIC COMMUNICATION TECHNIQUE
- H04L—TRANSMISSION OF DIGITAL INFORMATION, e.g. TELEGRAPHIC COMMUNICATION
- H04L63/00—Network architectures or network communication protocols for network security
- H04L63/02—Network architectures or network communication protocols for network security for separating internal from external traffic, e.g. firewalls
- H04L63/0272—Virtual private networks
Landscapes
- Engineering & Computer Science (AREA)
- Computer Hardware Design (AREA)
- Computer Security & Cryptography (AREA)
- Computing Systems (AREA)
- General Engineering & Computer Science (AREA)
- Computer Networks & Wireless Communication (AREA)
- Signal Processing (AREA)
- Data Exchanges In Wide-Area Networks (AREA)
- Computer And Data Communications (AREA)
- Mobile Radio Communication Systems (AREA)
Abstract
A computer-implemented method of assisting in establishing a secure communication is disclosed. The method includes obtaining an encryption key that is shared with a credentialing device, receiving from a client device an encrypted session identifier that encodes a password, decrypting the session identifier with the key to extract the password, and authenticating a communication session for the device using a challenge-response protocol.
Applications Claiming Priority (2)
| Application Number | Priority Date | Filing Date | Title |
|---|---|---|---|
| US83232106P | 2006-07-21 | 2006-07-21 | |
| US60/832,321 | 2006-07-21 |
Publications (2)
| Publication Number | Publication Date |
|---|---|
| WO2008011628A2 WO2008011628A2 (en) | 2008-01-24 |
| WO2008011628A3 true WO2008011628A3 (en) | 2008-04-03 |
Family
ID=38957687
Family Applications (1)
| Application Number | Title | Priority Date | Filing Date |
|---|---|---|---|
| PCT/US2007/074129 WO2008011628A2 (en) | 2006-07-21 | 2007-07-23 | Device authentication |
Country Status (2)
| Country | Link |
|---|---|
| US (1) | US7958544B2 (en) |
| WO (1) | WO2008011628A2 (en) |
Families Citing this family (44)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US20140026230A1 (en) * | 2005-12-05 | 2014-01-23 | Beijing Sursen International Information Technology Co., Ltd. | Method, System, Login Device, and Application Software Unit for Logging in to Document Management System |
| US20080215675A1 (en) * | 2007-02-01 | 2008-09-04 | Worklight Ltd. | Method and system for secured syndication of applications and applications' data |
| US9443068B2 (en) * | 2008-02-20 | 2016-09-13 | Micheal Bleahen | System and method for preventing unauthorized access to information |
| US20090235083A1 (en) * | 2008-02-20 | 2009-09-17 | Micheal Bleahen | System and method for preventing unauthorized access to information |
| KR20100012604A (en) * | 2008-07-29 | 2010-02-08 | 삼성전자주식회사 | Method and apparatus for protecting file in direct printing |
| US8418079B2 (en) | 2009-09-01 | 2013-04-09 | James J. Nicholas, III | System and method for cursor-based application management |
| US9002010B2 (en) * | 2009-09-10 | 2015-04-07 | Lenovo Enterprise Solutions (Singapore) Pte. Ltd. | Secure communication of information over a wireless link |
| US9774630B1 (en) * | 2009-09-28 | 2017-09-26 | Rockwell Collins, Inc. | Administration of multiple network system with a single trust module |
| US20110122810A1 (en) * | 2009-11-25 | 2011-05-26 | T-Mobile Usa, Inc. | Router-Based Home Network Synchronization |
| US8614976B1 (en) | 2010-03-29 | 2013-12-24 | Sprint Spectrum L.P. | Method and system for registering a nickname associated with a mobile node |
| US8745386B2 (en) | 2010-06-21 | 2014-06-03 | Microsoft Corporation | Single-use authentication methods for accessing encrypted data |
| US8196131B1 (en) | 2010-12-17 | 2012-06-05 | Google Inc. | Payment application lifecycle management in a contactless smart card |
| US8683560B1 (en) * | 2010-12-29 | 2014-03-25 | Amazon Technologies, Inc. | Techniques for credential generation |
| EP2475144A1 (en) * | 2011-01-05 | 2012-07-11 | Gemalto SA | Method for communicating between a server and a client and corresponding client, server and system |
| US8677464B2 (en) | 2011-06-22 | 2014-03-18 | Schweitzer Engineering Laboratories Inc. | Systems and methods for managing secure communication sessions with remote devices |
| EP4131113A1 (en) | 2012-02-29 | 2023-02-08 | Apple Inc. | Method, device and secure element for conducting a secured financial transaction on a device |
| US9344452B2 (en) | 2012-07-19 | 2016-05-17 | Sprint Communications Company L.P. | User control over WiFi network access |
| GB2505211B (en) * | 2012-08-22 | 2014-10-29 | Vodafone Ip Licensing Ltd | Communications device authentication |
| US9130945B2 (en) | 2012-10-12 | 2015-09-08 | Schweitzer Engineering Laboratories, Inc. | Detection and response to unauthorized access to a communication device |
| HUE049804T2 (en) * | 2012-12-21 | 2020-10-28 | Biobex Llc | Verification of password using a keyboard with a secure password entry mode |
| US8955076B1 (en) * | 2012-12-28 | 2015-02-10 | Emc Corporation | Controlling access to a protected resource using multiple user devices |
| US11178126B2 (en) * | 2013-01-15 | 2021-11-16 | Schneider Electric USA, Inc. | Systems and methods for securely accessing programmable devices |
| US9124582B2 (en) * | 2013-02-20 | 2015-09-01 | Fmr Llc | Mobile security fob |
| US10264090B2 (en) | 2013-02-27 | 2019-04-16 | Pavlov Media, Inc. | Geographical data storage assignment based on ontological relevancy |
| US10951688B2 (en) * | 2013-02-27 | 2021-03-16 | Pavlov Media, Inc. | Delegated services platform system and method |
| US9787669B2 (en) * | 2013-03-14 | 2017-10-10 | Comcast Cable Communications, Llc | Identity authentication using credentials |
| US10575347B2 (en) | 2013-11-04 | 2020-02-25 | Microsoft Technology Licensing, Llc | Delivery of shared WiFi credentials |
| US10148669B2 (en) * | 2014-05-07 | 2018-12-04 | Dell Products, L.P. | Out-of-band encryption key management system |
| JP6404928B2 (en) * | 2014-07-28 | 2018-10-17 | エンクリプティア株式会社 | User information management system and user information management method |
| WO2016053287A1 (en) * | 2014-09-30 | 2016-04-07 | Hewlett-Packard Development Company, L.P. | User authentication |
| US9584489B2 (en) * | 2015-01-29 | 2017-02-28 | Google Inc. | Controlling access to resource functions at a control point of the resource via a user device |
| US9714088B2 (en) * | 2015-03-27 | 2017-07-25 | Amazon Technologies, Inc. | Unmanned vehicle rollback |
| US9663226B2 (en) | 2015-03-27 | 2017-05-30 | Amazon Technologies, Inc. | Influencing acceptance of messages in unmanned vehicles |
| US9930027B2 (en) | 2015-03-27 | 2018-03-27 | Amazon Technologies, Inc. | Authenticated messages between unmanned vehicles |
| US9912655B2 (en) | 2015-03-27 | 2018-03-06 | Amazon Technologies, Inc. | Unmanned vehicle message exchange |
| WO2017020003A1 (en) | 2015-07-30 | 2017-02-02 | Reliance Jio Infocomm Usa, Inc. | Method and system for routing ip based messaging, voice and video calling based on the network parameters the device is connected to and the location |
| US10235432B1 (en) * | 2016-07-07 | 2019-03-19 | Google Llc | Document retrieval using multiple sort orders |
| US10171465B2 (en) | 2016-09-29 | 2019-01-01 | Helene E. Schmidt | Network authorization system and method using rapidly changing network keys |
| US10097538B1 (en) | 2017-08-12 | 2018-10-09 | Growpath, Inc. | User authentication systems and methods |
| WO2019055478A1 (en) * | 2017-09-12 | 2019-03-21 | Visa International Service Association | Secure and accurate provisioning system and method |
| US11075906B2 (en) * | 2017-12-28 | 2021-07-27 | Shoppertrak Rct Corporation | Method and system for securing communications between a lead device and a secondary device |
| US12401543B2 (en) | 2022-12-29 | 2025-08-26 | Garantir LLC | Sharing secrets over one or more computer networks using proxies |
| US11736461B1 (en) * | 2022-12-29 | 2023-08-22 | Garantir LLC | Sharing secrets over one or more computer networks using proxies |
| CN116781384A (en) * | 2023-07-14 | 2023-09-19 | 建信金融科技有限责任公司 | Request data processing method, device and server |
Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP0851335A2 (en) * | 1996-12-31 | 1998-07-01 | Compaq Computer Corporation | Secure two-piece user authentication in a computer network |
| US20030033545A1 (en) * | 2001-08-09 | 2003-02-13 | Wenisch Thomas F. | Computer network security system |
| US20030188201A1 (en) * | 2002-03-28 | 2003-10-02 | International Business Machines Corporation | Method and system for securing access to passwords in a computing network environment |
| US20030204732A1 (en) * | 2002-04-30 | 2003-10-30 | Yves Audebert | System and method for storage and retrieval of a cryptographic secret from a plurality of network enabled clients |
Family Cites Families (12)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| US5604803A (en) * | 1994-06-03 | 1997-02-18 | Sun Microsystems, Inc. | Method and apparatus for secure remote authentication in a public network |
| AU1053501A (en) * | 1999-11-02 | 2001-05-14 | Ajinomoto Co., Inc. | Polyazanaphthalene compound and medicinal use thereof |
| US6442687B1 (en) * | 1999-12-02 | 2002-08-27 | Ponoi Corp. | System and method for secure and anonymous communications |
| US20020178366A1 (en) * | 2001-05-24 | 2002-11-28 | Amiran Ofir | Method for performing on behalf of a registered user an operation on data stored on a publicly accessible data access server |
| US20030014631A1 (en) * | 2001-07-16 | 2003-01-16 | Steven Sprague | Method and system for user and group authentication with pseudo-anonymity over a public network |
| US20030084165A1 (en) | 2001-10-12 | 2003-05-01 | Openwave Systems Inc. | User-centric session management for client-server interaction using multiple applications and devices |
| GB2384403B (en) * | 2002-01-17 | 2004-04-28 | Toshiba Res Europ Ltd | Data transmission links |
| FR2847401A1 (en) | 2002-11-14 | 2004-05-21 | France Telecom | Access to a network service with rapid, revokable anonymous authentication and session creation and maintenance for online auctions, uses anonymous certificate of authority to produce anonymous signature which can be checked if needed |
| US20040128259A1 (en) | 2002-12-31 | 2004-07-01 | Blakeley Douglas Burnette | Method for ensuring privacy in electronic transactions with session key blocks |
| JP3890398B2 (en) | 2004-02-19 | 2007-03-07 | 海 西田 | Verification and construction of highly secure anonymous communication path in peer-to-peer anonymous proxy |
| KR20060046702A (en) * | 2004-04-29 | 2006-05-17 | 삼성전자주식회사 | Client Authentication Method and System |
| US7640579B2 (en) * | 2005-09-09 | 2009-12-29 | Microsoft Corporation | Securely roaming digital identities |
-
2007
- 2007-07-23 US US11/781,736 patent/US7958544B2/en not_active Expired - Fee Related
- 2007-07-23 WO PCT/US2007/074129 patent/WO2008011628A2/en active Application Filing
Patent Citations (4)
| Publication number | Priority date | Publication date | Assignee | Title |
|---|---|---|---|---|
| EP0851335A2 (en) * | 1996-12-31 | 1998-07-01 | Compaq Computer Corporation | Secure two-piece user authentication in a computer network |
| US20030033545A1 (en) * | 2001-08-09 | 2003-02-13 | Wenisch Thomas F. | Computer network security system |
| US20030188201A1 (en) * | 2002-03-28 | 2003-10-02 | International Business Machines Corporation | Method and system for securing access to passwords in a computing network environment |
| US20030204732A1 (en) * | 2002-04-30 | 2003-10-30 | Yves Audebert | System and method for storage and retrieval of a cryptographic secret from a plurality of network enabled clients |
Also Published As
| Publication number | Publication date |
|---|---|
| US7958544B2 (en) | 2011-06-07 |
| WO2008011628A2 (en) | 2008-01-24 |
| US20080022377A1 (en) | 2008-01-24 |
Similar Documents
| Publication | Publication Date | Title |
|---|---|---|
| WO2008011628A3 (en) | Device authentication | |
| WO2009022560A1 (en) | Client device, server device, and program | |
| WO2011017099A3 (en) | Secure communication using asymmetric cryptography and light-weight certificates | |
| WO2014176046A3 (en) | Community of interest-based secured communications over ipsec | |
| GB2512249A (en) | Secure peer discovery and authentication using a shared secret | |
| WO2009044174A3 (en) | Authentication method and framework | |
| WO2007011897A3 (en) | Cryptographic authentication, and/or establishment of shared cryptographic keys, using a signing key encrypted with a non-one-time-pad encryption, including (but not limited to) techniques with improved security against malleability attacks | |
| WO2010126638A3 (en) | Identity based authenticated key agreement protocol | |
| CA2446304A1 (en) | Use and generation of a session key in a secure socket layer connection | |
| WO2005006629A3 (en) | Terminal authentication in a wireless network | |
| WO2007111710A3 (en) | Method and apparatus for providing a key for secure communications | |
| TW200733686A (en) | Asynchronous encryption for secured electronic communications | |
| WO2009126209A3 (en) | Methods and apparatus for authentication and identity management using a public key infrastructure (pki) in an ip-based telephony environment | |
| WO2009037582A3 (en) | System and method for securely communicating on- demand content from closed network to dedicated devices, and for compiling content usage data in closed network securely communicating content to dedicated devices | |
| EP1577736A3 (en) | Efficient and secure authentication of computing systems | |
| WO2008019194A3 (en) | Mutual authentication and secure channel establichment between two parties using consecutive one-time passwords | |
| WO2014083335A3 (en) | A method and system of providing authentication of user access to a computer resource via a mobile device using multiple separate security factors | |
| WO2007001328A3 (en) | Information-centric security | |
| CN105850073A (en) | Access authentication method and device for information system | |
| WO2016144257A3 (en) | Method and system for facilitating authentication | |
| WO2009126647A3 (en) | Secure session key generation | |
| WO2008054375A3 (en) | Constrained cryptographic keys | |
| WO2012154976A3 (en) | System and method for web-based security authentication | |
| RU2004101416A (en) | DEVICE CONFIGURED FOR DATA EXCHANGE AND AUTHENTICATION METHOD | |
| WO2008024559A3 (en) | Method and apparatus for authenticating applications to secure services |
Legal Events
| Date | Code | Title | Description |
|---|---|---|---|
| NENP | Non-entry into the national phase |
Ref country code: DE |
|
| NENP | Non-entry into the national phase |
Ref country code: RU |
|
| 121 | Ep: the epo has been informed by wipo that ep was designated in this application |
Ref document number: 07840480 Country of ref document: EP Kind code of ref document: A2 |
|
| 122 | Ep: pct application non-entry in european phase |
Ref document number: 07840480 Country of ref document: EP Kind code of ref document: A2 |